Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-27538
HistoryMar 20, 2023 - 12:00 a.m.

CVE-2023-27538

2023-03-2000:00:00
ubuntu.com
ubuntu.com
25
cve-2023-27538
ssh
connection
vulnerability
libcurl
incomplete fix
configuration check
unix

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

EPSS

0.002

Percentile

56.7%

An authentication bypass vulnerability exists in libcurl prior to v8.0.0
where it reuses a previously established SSH connection despite the fact
that an SSH option was modified, which should have prevented reuse. libcurl
maintains a pool of previously used connections to reuse them for
subsequent transfers if the configurations match. However, two SSH settings
were omitted from the configuration check, allowing them to match easily,
potentially leading to the reuse of an inappropriate connection.

Notes

Author Note
mdeslaur incomplete fix for CVE-2022-27782
OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchcurl< 7.58.0-2ubuntu3.24UNKNOWN
ubuntu20.04noarchcurl< 7.68.0-1ubuntu2.18UNKNOWN
ubuntu22.04noarchcurl< 7.81.0-1ubuntu1.10UNKNOWN
ubuntu22.10noarchcurl< 7.85.0-1ubuntu0.5UNKNOWN
ubuntu23.04noarchcurl< 7.88.1-6ubuntu2UNKNOWN

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

EPSS

0.002

Percentile

56.7%